chore(deps): pin dependencies
parent
9ae7c75cc4
commit
83d131be39
|
|
@ -9,7 +9,7 @@ jobs:
|
||||||
runs-on: ubuntu-latest
|
runs-on: ubuntu-latest
|
||||||
steps:
|
steps:
|
||||||
- name: Checkout code
|
- name: Checkout code
|
||||||
uses: actions/checkout@v4
|
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4
|
||||||
- name: Build image
|
- name: Build image
|
||||||
run: docker build -t geoserver-docker.osgeo.org/geoserver:${{ github.sha }} .
|
run: docker build -t geoserver-docker.osgeo.org/geoserver:${{ github.sha }} .
|
||||||
- name: Run trivy
|
- name: Run trivy
|
||||||
|
|
@ -22,6 +22,6 @@ jobs:
|
||||||
severity: 'CRITICAL,HIGH'
|
severity: 'CRITICAL,HIGH'
|
||||||
vuln-type: 'os,library'
|
vuln-type: 'os,library'
|
||||||
- name: Upload Trivy scan results to GitHub Security tab
|
- name: Upload Trivy scan results to GitHub Security tab
|
||||||
uses: github/codeql-action/upload-sarif@v2
|
uses: github/codeql-action/upload-sarif@3e0e84636c6f5df46a2cb232ae1dd1384713150d # v2
|
||||||
with:
|
with:
|
||||||
sarif_file: 'trivy-results.sarif'
|
sarif_file: 'trivy-results.sarif'
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
FROM tomcat:9.0.91-jdk11-temurin-jammy
|
FROM tomcat:9.0.91-jdk11-temurin-jammy@sha256:773822dc3543ae612d1710fe68ea4d21455edde94aa0ad216c3d769723b53c42
|
||||||
LABEL vendor="osgeo.org"
|
LABEL vendor="osgeo.org"
|
||||||
|
|
||||||
# Build arguments
|
# Build arguments
|
||||||
|
|
|
||||||
|
|
@ -29,7 +29,7 @@ services:
|
||||||
retries: 3
|
retries: 3
|
||||||
timeout: 20s
|
timeout: 20s
|
||||||
postgis:
|
postgis:
|
||||||
image: postgis/postgis:16-3.4-alpine
|
image: postgis/postgis:16-3.4-alpine@sha256:5cc92acec6cb62b56e55f5b74d065f29c1ebfc9a6e7edc8b443b9f9d17edab0d
|
||||||
ports:
|
ports:
|
||||||
- "5555:5432"
|
- "5555:5432"
|
||||||
environment:
|
environment:
|
||||||
|
|
|
||||||
Loading…
Reference in New Issue